Summary
Overview
Work History
Education
Skills
Personal Information
PROFESSIONAL DEVELOPMENT
Timeline
Generic

Andre Wilson

Las Vegas,NV

Summary

Strategic cybersecurity and enterprise technology leader with 17+ years of experience in healthcare, financial technology, higher education, and entertainment. Led security transformation initiatives, identity governance, and acquisition integration programs. Managed teams of up to 15 in multimillion-dollar projects, ensuring seamless delivery in complex environments. Specializes in building effective security teams, vendor management, and converting business requirements into actionable plans.

Overview

18
18
years of professional experience

Work History

Interim Director of Identity and Access Management

Methodist Le Bonheur Healthcare
01.2025 - Current
  • Lead a portfolio of 15-20 security and IAM projects with an approximately $2M budget, supporting an environment of roughly 28,000 identities.
  • Managed 10 direct reports: four IAM security engineers and six analysts. Hired nine team members and oversaw onboarding, coaching, performance reviews, and work assignments.
  • Streamlined access provisioning to one business day through implementation of role-based and birthright access.
  • Evaluated 358 applications and integrated 335 with SailPoint as part of enterprise identity governance delivery.
  • Negotiated SailPoint migration contract from $180K to $150K, achieving $30K savings in first year; managed security vendor relationships across identity, privileged access, and endpoint protection.
  • Led remediation of 10 high-risk issues in first year, enhancing privileged-account controls and implementing AI-assisted recommendations for CyberArk vaulting.
  • Implemented facial authentication and DUO PIN Push MFA to address executive-impersonation risk; supported HIPAA and SOX-related access controls and timely termination of access.
  • Completed two mergers and stood up three external joint business ventures corporate spin-offs.

Principal Technical Compliance Program Manager

Toast Inc
01.2023 - 12.2024
  • Led SOC 2, PCI DSS, and SOX audit and assessment programs across five business units, 10 applications, and approximately 75100 evidence items.
  • Coordinated evidence collection, control-testing support, and stakeholder communications while tracking issues and remediation throughout the audit cycle to ensure comprehensive compliance.
  • Managed three GRC analysts, coordinating technical compliance efforts with security, legal, procurement, R&D, and application stakeholders to enhance cross-functional collaboration.
  • Developed a third-party risk-scoring methodology based on application criticality, business function, and potential impact, adopted for evaluating approximately 40 vendors and 75 applications.
  • Assessed 45 third parties during one SOC 2 audit cycle, evaluating vendor and application risk to support compliance decisions.
  • Built a Jira workflow that automated evidence requests, ownership, reminders, prioritization, status tracking, and reporting, reducing process effort by an estimated 25 hours per week.

Manager, Identity and Access Management

University of Southern California
10.2021 - 12.2022
  • Led 15 direct reports, including five IAM security engineers and 10 analysts, with responsibility for hiring, coaching, performance reviews, and workload allocation.
  • Managed 450-application environment and integrated 1520 applications into SSO, enhancing user access efficiency.
  • Oversaw a major SailPoint IdentityIQ and ServiceNow Catalog integration, with broader identity-platform work involving Workday, Entra ID, and Active Directory.
  • Modernized IAM policies using NIST principles and served as the primary stakeholder liaison for CyberArk privileged-access initiatives.
  • Redesigned IAM operating model, policies, standards, and service delivery processes, translating business and security requirements into prioritized engineering work.
  • Oversaw departmental delivery within $3M budget for software and salaries, aligning engineering priorities with IAM roadmap to optimize resource allocation.
  • Delivered MFA to 47,000 students with 100% adoption in the first year. Employees were already enrolled in MFA.

Manager, Compliance and Identity and Access Management

Prisma Health
10.2020 - 09.2021
  • Directed IAM transformation with an approximately $1.3M budget across 20 hospitals and 490 physician-practice sites, supporting 37,000 employee identities plus contractors and vendors.
  • Led Phase II of SailPoint IdentityIQ delivery and integrated approximately 490 applications. Extended Ping SSO across ancillary and physician-practice locations.
  • Automated access certification campaigns, shortening the cycle from three to four months to one week, enabling reviewers to identify unnecessary access with usage information.
  • Established Identity Governance Board with Legal, Compliance, HR, Infrastructure, and security teams; advanced least-privilege policy and enterprise SSO strategy.
  • Coordinated identity integration for a merger impacting 1,500 employees, delivering leadership reporting on IAM performance, service trends, and emerging risks.

Senior Information Technology Manager

NBCUniversal Entertainment Technology
10.2019 - 09.2020
  • Developed privileged-access strategy and initiated CyberArk vaulting initiative across 800 MSP accounts, 650 users, and 10 departments to enhance security posture.
  • Reviewed and optimized MSP provisioning and deprovisioning practices, strengthened vendor-account controls, and ensured timely contractor offboarding through role-based access and adherence to NIST RMF and ISO 27002 standards.
  • Created and facilitated a cybersecurity governance board for change control, escalations, and cross-functional decisions.
  • Implemented Splunk logging across storage arrays and Cisco UCS infrastructure to enhance security visibility and incident response capabilities.

Senior IT Security Program Manager, Mergers and Acquisitions

Qualcomm
03.2019 - 10.2019
  • Executed an identity migration for approximately 4,500 global employees, ensuring timely completion and uninterrupted operations.
  • Coordinated identity consolidation, employee rebadging, password synchronization, acquired-domain retirement, cutover, and post-migration support to streamline identity management across the organization.
  • Automated access-review processes for privileged accounts and regular employee access, enhancing security oversight and compliance.
  • Maintained risk registers, milestones, cutover plans, and executive reporting while coordinating risk decisions with Legal, Compliance, HR, CISO, CIO, and technology leaders to ensure alignment and mitigate potential issues.

IT Security Project Manager

DXC Technology
04.2018 - 03.2019
  • Led estimation and delivery for enterprise security initiatives spanning SOC, SIEM, data loss prevention, role-based access, and network segmentation.
  • Coordinated vulnerability remediation and infrastructure hardening while managing operating and project finances for resources and technology assets.
  • Developed PMO change-control and project-governance policies and procedures to enhance security delivery.
  • Collaborated with Tripwire to configure PCI-specific content, dashboards, and reporting to meet compliance standards.

IT Security Program Manager, Risk Management

UCLA Health Information Technology
09.2017 - 04.2018
  • Established CISO-sponsored GRC board with Clinical Engineering, Procurement, PMO, Finance, technology leadership, and Risk Management to enhance governance and risk oversight.
  • Developed the SOC/SIEM expansion roadmap and implemented behavioral analytics to flag anomalous activity for review and escalation.
  • Assessed IAM gaps across HR, Active Directory, Exchange, and collaboration environments.
  • Documented medical devices and related technology assets, including applications, ports, contracts, patching schedules, and vendor information; migrated records into ServiceNow CMDB to streamline asset management and improve data accuracy.
  • Advanced certificate management, firewall, endpoint, remote-access, and Splunk-reporting initiatives in a healthcare environment.

IT Project Manager, Soarian Financials

Alameda Health System
05.2017 - 09.2017
  • Directed rebuilding of physician professional-fee billing environment in Cerner Soarian Financials, enhancing integration across Patient Access, Emergency, Scheduling, Charge Entry, HIM, and Revenue Integrity.
  • Managed deployment and training while overseeing contingency planning and post-go-live support, ensuring system stability and user readiness.
  • Coordinated interface work, testing, and issue remediation, securing stakeholder signoff for successful billing environment deployment.

Senior IT Program Manager, Application Support and Operations

The Walt Disney Company
12.2016 - 05.2017
  • Led security initiatives for an e-commerce environment supporting Disney stores, while enhancing protection of servers, hardware, and infrastructure.
  • Coordinated Red Team penetration testing and gap assessments to identify vulnerabilities across networks, operating systems, and system controls.
  • Led server vulnerability and risk management, by implementing a ServiceNow CMDB repository to improve server inventory and control visibility.
  • Managed network-vulnerability, incident-response, and log-monitoring initiatives using ISO 27001 risk principles.

Senior Project Manager Information Security

L A Care Health Plan
Los Angeles, California
10.2014 - 12.2016
  • Directed prepaid-card payment-gateway initiative in regulated healthcare environment, ensuring compliance with industry standards and improving payment processing.
  • Led Affordable Care Act integration by establishing state data feeds for employment and income verification, enhancing data accuracy for compliance.
  • Represented Information Security on PMO Change Control Board, facilitating review and coordination of technology changes to mitigate risks.

Director of Project Management

McKesson
10.2011 - 09.2014
  • Directed healthcare technology programs and executive client relationships for a 222-bed county hospital in Central California.
  • Served as the primary escalation point between hospital executives, McKesson leadership, technical teams, and project stakeholders.
  • Coordinated executive communications and client delivery to ensure alignment across healthcare IT, operations, and implementation activities.

Project Manager

Nautilus HMG and Greater Newport Physicians
09.2009 - 07.2011

Director of Special Projects and Implementations

Physicians Management Group LLC
09.2008 - 08.2009

Education

Bachelor of Science - Cybersecurity

University of Maryland Global Campus
Hyattsville, MD
12-2028

Skills

  • Identity access management
  • Identity and access: SailPoint IdentityIQ and IdentityNow, CyberArk(Idira), Ping Identity, Microsoft Entra ID, Active Directory, SecureLink, Cisco Duo MFA
  • Risk and Compliance
  • Cybersecurity Governance
  • Third Party Risk
  • Audit preparation
  • NIST Framework 800-53,63, 207 and Risk Management Framework; SOC 2; PCI DSS; SOX; HIPAA; ISO 27001 and 27002; GDPR; CCPA; COBIT
  • Program and Portfolio Management
  • Agile and waterfall delivery, PMO governance, change control, roadmaps, resource planning, risk registers, executive reporting, acceptance criteria, and cutover management
  • Security and delivery: Splunk, Tripwire, CrowdStrike, ServiceNow and Application CMDB, Jira, Smartsheets
  • Enterprise and healthcare applications: Workday, Epic, Cerner Soarian Financials
  • Vendor Negotiation
  • Budgeting and Resource Planning
  • Cost analysis
  • People Leadership
  • Healthcare Compliance
  • Agile and waterfall delivery, PMO governance, change control, roadmaps, resource planning, risk registers, executive reporting, acceptance criteria, and cutover management

Personal Information

Title: Cybersecurity and Technology Program Leader

PROFESSIONAL DEVELOPMENT

  • Training in project management, SailPoint, and SecureLink
  • CISM and CRISC training

Timeline

Interim Director of Identity and Access Management

Methodist Le Bonheur Healthcare
01.2025 - Current

Principal Technical Compliance Program Manager

Toast Inc
01.2023 - 12.2024

Manager, Identity and Access Management

University of Southern California
10.2021 - 12.2022

Manager, Compliance and Identity and Access Management

Prisma Health
10.2020 - 09.2021

Senior Information Technology Manager

NBCUniversal Entertainment Technology
10.2019 - 09.2020

Senior IT Security Program Manager, Mergers and Acquisitions

Qualcomm
03.2019 - 10.2019

IT Security Project Manager

DXC Technology
04.2018 - 03.2019

IT Security Program Manager, Risk Management

UCLA Health Information Technology
09.2017 - 04.2018

IT Project Manager, Soarian Financials

Alameda Health System
05.2017 - 09.2017

Senior IT Program Manager, Application Support and Operations

The Walt Disney Company
12.2016 - 05.2017

Senior Project Manager Information Security

L A Care Health Plan
10.2014 - 12.2016

Director of Project Management

McKesson
10.2011 - 09.2014

Project Manager

Nautilus HMG and Greater Newport Physicians
09.2009 - 07.2011

Director of Special Projects and Implementations

Physicians Management Group LLC
09.2008 - 08.2009

Bachelor of Science - Cybersecurity

University of Maryland Global Campus
Andre Wilson